I put on my robe and wizard hat.

(I am in the UK and make TTRPGs. He/Him.)

  • 0 Posts
  • 9 Comments
Joined 1 year ago
cake
Cake day: June 28th, 2023

help-circle




  • First - really good summary and sounds like everyone is working hard.

    Cross posting the below comment.

    Under GDPR if you have had a data breach you have a legal obligation to assess whether you need to report it and you must make the report within 72 hours of discovering the breach.

    There are other types of reportable breaches too, I only mention data as it sounds most likely. You may or may not be subject to PECR which may also have been breached although less likely. I don’t really have enough familiarity with the regulation to discuss that one.

    If you are not sure if there has been a breach you may also need to discuss it with the relevant body or make a report.

    Please can you update what action you have taken regarding this and if the incident was reportable or not and the reasons why. Edit - from that new information, it sounds like this is a reportable breach.

    For a full understanding, it would be good to know if you had 2FA enabled on the compromised account particularly as it had admin privileges and if so how 2FA was circumvented with this exploit.

    It would also be good to know what measures you have in place to prevent the same or other malicious attempts on your Open Collective and Patreon accounts as issues with those are potentially more serious. They may not be vulnerable to this, but it is going to be reassuring to know there is good security practice, 2FA protection etc enabled and you have robust procedures in place.



  • Oh wow, I have no idea how that happened! I was on an app, maybe the sorting is a bit off. I’ll see if I can recreate it to figure out what happened.

    Edit - there seems to be a few old posts from various instances showing in the .world feed when sorted by All and Hot - but that’s across the website and apps, not specific to an app. Maybe it is people somehow digging them up, but I didn’t do a search or anything like that to get to this post - it was just in the All-Hot feed and no one else had posted before me. Looking at the docs, sorting should be Hot: Like active, but uses time when the post was published.

    All-Hot feed:

    https://lemmy.ml/post/60804 this post as an example also has some new comments on it, but I can see how that would end up in my feed as there are comments from earlier today before mine.

    If you’re suddenly seeing old posts being commented on and it has only started today, maybe there is an issue after the latest update? If it is all working as designed, not sure how I would have got to this post. If I’m not understanding the sorting correctly, can you explain it for me please if you get time?

    Don’t really have the time to look into it any more, but you may see more of this for whatever reason!